Напоминает конфигурацию cisco:
# !Software Version V100R005C01SPC100 sysname SW_1-119 # igmp-snooping enable multicast drop-unknown # ndp enable # bpdu enable # lldp enable # undo http server enable # drop illegal-mac alarm # qos queue 2 wrr weight 0 qos queue 3 wrr weight 0 # acl number 2005 description acl for mngmnt rule 5 permit source 192.168.0.0 0.0.255.255 rule 30 deny # acl number 3000 description Bad traffic classification (Security) rule 5 permit udp destination-port range 135 netbios-ssn rule 10 permit tcp destination-port range 135 139 rule 15 permit tcp destination-port eq 445 acl number 3001 description Multicast (IPTV) rule 5 permit ip destination 224.0.0.0 15.255.255.255 acl number 3002 description Local Unicast (local resources) rule 1 permit ip destination 10.0.0.0 0.255.255.255 acl number 3003 description Internet Unicast (Internet Access) rule 5 permit ip # traffic classifier internet operator and if-match acl 3003 traffic classifier iptv operator and if-match acl 3001 traffic classifier bad-traffic operator and if-match acl 3000 traffic classifier local operator and if-match acl 3002 # traffic behavior iptv-remark permit remark 8021p 4 traffic behavior internet-remark permit remark 8021p 2 traffic behavior local-remark permit remark 8021p 0 traffic behavior deny deny # traffic policy common-access-network-policy classifier bad-traffic behavior deny classifier iptv behavior iptv-remark classifier local behavior local-remark classifier internet behavior internet-remark # vlan 2 description manag vlan 50 description iptv igmp-snooping enable vlan 4 description fiziki igmp-snooping enable multicast-vlan enable multicast-vlan user-vlan 50 # aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin # interface Vlanif2 ip address 192.168.1.119 255.255.240.0 # ntp-service unicast-server 192.168.1.1 source-interface Vlanif2 # interface Ethernet0/0/1 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/2 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/3 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/4 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/5 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/6 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/7 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/8 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/9 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/10 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/11 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/12 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/13 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/14 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/15 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/16 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/17 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/18 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/19 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/20 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/21 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/22 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/23 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface Ethernet0/0/24 port hybrid pvid vlan 4 undo port hybrid vlan 1 port hybrid untagged vlan 4 50 loopback-detect enable stp disable traffic-policy common-access-network-policy inbound undo lldp enable port-isolate enable group 1 broadcast-suppression 50 # interface GigabitEthernet0/0/1 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 2 4 50 loopback-detect enable ndp enable combo-port fiber trust 8021p # interface GigabitEthernet0/0/2 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 2 4 50 loopback-detect enable ndp enable combo-port fiber trust 8021p # interface NULL0 # ip route-static 0.0.0.0 0.0.0.0 192.168.1.1 # snmp-agent snmp-agent local-engineid 000007DB7F00000100001E5D snmp-agent community read public acl 2005 snmp-agent community write 1nf0sys acl 2005 snmp-agent sys-info version all # user-interface con 0 idle-timeout 0 0 user-interface vty 0 4 acl 2005 inbound set authentication password cipher <password> user privilege level 3 #